Simon Smith on twitter twitter  Simon Smith on facebook facebook  Simon Smith on instagram instagram  Simon Smith on pinterest pinterest
  CHIPPING NORTON     CHELTENHAM  


Simon Smith UK

Legal – Privacy Policy

Simon Smith UK is committed to protecting our client's privacy. Please take the time to review this notice which explains what information we collect about you, how we use it, and your rights.

Simon Smith UK is a trading name of Burnt Orange (UK) Limited who is a group company, registered in England and Wales (registered number 8791249) whose registered office is situated at Hillside, Albion Street, Chipping Norton, Oxfordshire, OX7 5BH. ("Simon Smith UK”, “SSUK”, "we", "us" and "our").

Burnt Orange (UK) Limited is a salon group that provides services including hair cutting, colouring, texturising, treatments and wig personalisation.

www.SimonSmithUK.com our related web sites and any mobile Sites or mobile application that link to this Privacy Policy (collectively, the “Sites”, “Sites”) are owned and operated by Burnt Orange (UK) Limited.

Burnt Orange (UK) Limited is the data controller of the personal data collected via the Sites and any salon within the Burnt Orange (UK) Limited group. You can contact us on Privacy@SimonSmithUK.com.

Burnt Orange (UK) Limited are committed to protecting your privacy and meeting the requirements of The General Data Protection Regulation (GDPR) (EU) 2016/679

From time to time we may revise this Privacy Policy. If we decide to do so we will post the changes on the Sites and a notice in the salons so that you are always aware of what information we collect, how we use it and under what circumstances we disclose it.

Contact

In the occurrence that you want to make contact or a complaint about how your personal data was gathered, how it is being processed by Burnt Orange (UK) Limited (or third parties used by Burnt Orange (UK) Limited) or you are not satisfied about how a complaint has been handled, you retain the right to lodge a complaint directly with the supervisory authority and Burnt Orange (UK) Limited.

Burnt Orange (UK) Limited, Client Services, 2nd Floor, 6a Market Place, Chipping Norton, Oxfordshire, OX7 5NA
Tel: 01608 670 437
Privacy@SimonSmithUK.com

Sites – Privacy Policy

The following Privacy Policy outlines how Burnt Orange (UK) Limited collects, uses, protects and transfers your personal data.

By using the Sites you agree to the Terms & Conditions, the Privacy Policy and Cookie Policy

When you shop on the Sites which we own and maintain, we require information to process your order, ensure safe and secure delivery, and to make your visit to the Web sites a more enjoyable shopping experience.

This Privacy Policy (together with our Terms & Conditions and our Cookie Policy) sets out the basis on which any personal data we collect from you, or that you provide to us, will be processed by us. Please read the following carefully to understand our views and practices regarding your personal data and how we will treat it.

What personal data do we collect about you?

We collect personal data from you when you provide it to us directly and through your use of the Sites. This information may include:

  • Information you provide to us when you use our Sites (e.g. your name, contact details, gender, reviews, and any information which you add to your account profile);
  • Transaction and billing information, if you make any purchases from us or using our Sites (e.g. credit/debit card details and delivery information);
  • Records of your interactions with us (e.g. if you contact our client service team or salons, interact with us on social media);
  • Information you provide us when you enter a promotion, competition, loyalty scheme or participate in a survey;
  • Information collected automatically, using cookies and other tracking technologies (e.g. which pages you viewed and whether you clicked on a link in one of our email or SMS updates).
  • We may also obtain and use information about you as a result of authentication or identity checks (including your IP address). We do not sell, trade or rent your personal information to other companies outside of our group of companies.

We may also collect information about the device you use to access our Sites; and other information necessary to provide the Sites, for example we may access your location if you give us your consent. If you also shop in one of our salons, we may combine information you give us in-store (e.g. if you make a purchase or join our mailing list in-store) with the information above.

What do we use this personal data for?

Depending on how you use our Sites, your interactions with us, and the permissions you give us, the purposes for which we use your personal data include:

  • To fulfil your order and maintain your online account.
  • To manage and respond to any queries or complaints to our client service team.
  • To personalise the Sites to you and show you content we think you will be most interested in, based on your account information, your purchase history and your browsing activity.
  • To improve and maintain the Sites, and monitor its usage.
  • For market research, e.g. we may contact you for feedback about our services or products.
  • To send you marketing messages and show you targeted advertising, where we have your consent or are otherwise permitted to do so.
  • For security purposes, to investigate fraud and where necessary to protect ourselves and third parties.
  • To comply with our legal and regulatory obligations.

We rely on the following legal basis, under data protection law, to process your personal data:

  • Because the processing is necessary to perform a contract with you, or take steps prior to entering into a contract with you (e.g. where you have made a purchase with us, we use your personal data to process the payment and fulfil your order).
  • Because we have obtained your consent (e.g. where you contact us with a query, where you add optional information to your account profile, or if you consent to receive marketing from us).
  • Because one of in our legitimate interests as an e-commerce provider to maintain and promote our products and services. We are always seeking to understand more about our clients in order to offer the best services, products and client experience. We may use information about you to tailor your view of the Sites, to make it more interesting and relevant in respect of the services, products and offers on view.

Our Sites may allow you the option of adding additional information to your account profile, we treat this information with particular sensitivity, as we understand it can reveal information about your health. You do not have to provide this information to us, and can delete it or update it at any time.

Marketing

We love to communicate with our clients and so, depending on your marketing preferences, we may use your personal data to send you marketing messages by email, phone or post. Some of these messages may be tailored to you, based on your previous browsing or purchase activity, and other information we hold about you.

If you would like to subscribe to marketing notifications (e.g. Newsletters, Promotions) by email from the Sites then please email Privacy@SimonSmithUK.com with this request and we will set-up a basic account for you to access on the Sites. All accounts are set-up automatically if you make a purchase on the Sites with the option to opt out of the marketing preferences.

If you no longer want to receive marketing communications from us (or would like to opt back in!), you can change your preferences at any time by contacting us on Privacy@SimonSmithUK.com, clicking on the ‘unsubscribe’ link in any email, or updating your settings in your account. If you unsubscribe from marketing, please note we may still contact you with service messages from time to time (e.g. order and delivery confirmations, and information about your legal rights).

You may also see ads for our Sites on third party web sites, including on social media. These ads may be tailored to you using cookies (which track your web activity, so enable us to serve ads to clients who have visited our Sites). Where you see an ad on social media, this may because we have engaged the social network to show ads to our clients, or users who match the demographic profile of our clients. In some cases, this may involve sharing your email address with the social network. If you no longer want to see tailored ads you can change your cookie and privacy settings on your browser and these third party web sites.

Who do we share this personal data with?

We share clients’ personal data with third parties in the following circumstances:

  • With other companies in our group of companies, as necessary to operate the Sites.
  • With our suppliers and service providers working for us, e.g. payment processors and delivery companies.
  • With our professional and legal advisors.
  • With third parties engaged in fraud prevention and detection.
  • With law enforcement or other governmental authorities, e.g. to report a fraud or in response to a lawful request.
  • In the event that we sell any business assets, the personal data of our clients may be disclosed to a potential buyer. In this event, we will make reasonable attempts to ensure the buyer will be bound by the terms of this Privacy Policy.
  • Otherwise where we have your consent or are otherwise legally permitted to do so.

How long do we keep your data?

Burnt Orange (UK) Limited retains your personal data for as long as necessary to provide a service to our clients.

Burnt Orange (UK) Limited are required under tax laws to keep your personal data for a minimum of 7 years. Where we have your consent for marketing purposes, we will retain the minimum required data until you notify us that you no longer wish to receive such information.

The criteria for which we would continue to process your personal information includes:

  • Where there is a legal basis, obligation or legitimate interest to continuing processing your personal information.
  • Where processing is necessary for the establishment, exercise or defence of legal claims.

Burnt Orange (UK) Limited will keep your personal data for as long as we need it for the purposes set out above, and so this period will vary depending on your interactions with us. For example, where you have made a purchase with us, we will keep a record of your purchase for the period necessary for invoicing, tax and warranty purposes. We may also keep a record of correspondence with you (for example if you have made a complaint about a service or product) for as long as is necessary to protect us from a legal claim. Where we no longer have a need to keep your information, we will delete it. Please note that where you unsubscribe from our marketing communications, we will keep a record of your email address to ensure we do not send you marketing emails in future.

Burnt Orange (UK) Limited use service providers based around the world. Consequently, your personal data may be processed in countries outside of Europe, including in countries where you may have fewer legal rights in respect of your data than you do under local law. If we transfer personal data outside the European Economic Area we will, as required by applicable law, ensure that your privacy rights are adequately protected by appropriate safeguards, in particular the EU’s standard contractual clauses. Please contact us if you would like more information about these safeguards.

Safeguarding your Personal Data

Burnt Orange (UK) Limited realise how important it is to securely store any information that you provide. The Sites maintains the highest levels of security. Our Sites uses high-level SSL encryption technology, the most advanced security software currently available for online transactions. You can therefore rest assured that we take the privacy and security of your payment and personal details very seriously.

You can tell whether a page is secure as 'https' will replace the 'http' at the front of the Sites in your browser address window. A small locked padlock will also appear in the bottom bar of your browser window.

All information you provide to us is stored on our secure servers. Any payment transactions will be encrypted using SSL technology.

Where we have given you (or where you have chosen) a password which enables you to access certain parts of the Sites you are responsible for keeping this password confidential. We ask you not to share a password with anyone.

We do appreciate that remembering passwords can be tricky, but setting effective and secure passwords on all the Sites you use is vital in combating possible fraudulent activity using your personal details.

It’s best to avoid using the same password for each of your online accounts, because if a criminal gains access to it, all your accounts could be at risk. Multiple passwords keep you safer.

When you set a password, it’s a good idea to use a mix of numbers and characters, and something that’s very personal to you. Most Sites these days will set a minimum number of characters to use, but do avoid using obvious phrases like “password”, or your name, or phone number.

It’s a good idea to change your passwords on a regular basis, especially for Sites you use frequently and which involve financial transactions.

If you ever get a request to reveal your password for an online Sites, don’t respond as legitimate Sites and services won’t ask you to send them passwords via email. You may be tempted to share passwords with close family, but do keep in mind there’s always a risk they could pass information on inadvertently or share it with someone else.

At any time you can re-set your password on the Sites via the “forgotten password” link on the login page where we will email you instructions to re-set your password. You can always change your password via the Account menu once you have logged in. It’s a good idea at this point to change your password to something that’s as secure as possible.

For more information on online safety and passwords, there are a number of useful web sites such as: http://www.microsoft.com/en-GB/security/online-privacy/passwords-create.aspx or https://www.google.com/intl/en_GB/goodtoknow/online-safety/passwords/

Unfortunately, the transmission of information via the internet is not completely secure. Although we will do our best to protect your personal data we cannot guarantee the security and integrity of your data transmitted to the Sites and any transmission is at your own risk. Once we have received your information, we will use strict procedures and security features to try to prevent unauthorised access.

Children

Our Sites is not intended for, and should not be used by, children under the age of 18. We do not knowingly collect personal data from children under 18.

Cookies

The Sites uses cookies to collect information about you. Cookies are small data files which are placed on your computer by the Sites and which collect certain personal information about you. Cookies enable us to tailor our service offering to provide you with products and services which are more relevant to your individual tastes. For detailed information on the cookies we use and the purposes for which we use them see our Cookie Policy

Your rights as the individual

If your personal data is held by Burnt Orange (UK) Limited you hold particular rights over it. Where you have provided consent for us to contact you as part of our marketing services, you have the right to modify or withdraw your consent at any time by using the unsubscribe option accompanied with all of our direct email marketing, or by contacting Burnt Orange (UK) Limited on Privacy@SimonSmithUK.com

You also have the right:

  • To be informed of how your personal data will be used before it is collected.
  • To access your personal data personal data and to information on how your information is used after it has been gathered.
  • To have personal data corrected if it is incomplete, inaccurate or out-of-date.
  • To request the removal or deletion of personal data where there is no compelling reason for its continued processing.
  • To restrict processing, to ‘block’ processing of your personal data.
  • To data portability, having your data moved, copied or transferred from Burnt Orange (UK) Limited to another organisation in an easily readable format.
  • To object to direct marketing from us.

Burnt Orange (UK) Limited will comply with any requests to exercise your rights in accordance with applicable law. Please be aware, however, that there are a number of limitations to these rights, and there may be circumstances where we are not able to comply with your request. To make any requests regarding your personal data, or if you have any questions or concerns regarding your personal data, you should contact us on Privacy@SimonSmithUK.com. You are also entitled to contact your local supervisory authority for data protection.

Third party sites

The Sites contains links to other web sites and social media services operated by third parties. Please note that this Privacy Policy applies only to the personal information that we collect through the Sites and we cannot be responsible for personal information that third parties may collect, store and use through their web sites. You should always read the Privacy Policy of each web sites you visit carefully.

Salon – Privacy Policy

Simon Smith UK is a trading name of Burnt Orange (UK) Limited who is registered in England and Wales (registered number 8791249) whose registered office is situated at Hillside, Albion Street, Chipping Norton, Oxfordshire, OX7 5BH. ("Simon Smith UK”, “SSUK”, "we", "us" and "our").

Burnt Orange (UK) Limited is a salon group that provides services including hair cutting, colouring, texturising, treatments and wig personalisation.

The following Privacy Policy outlines how Burnt Orange (UK) Limited collects, uses, protects and transfers your personal data.

What personal data do we collect about you?

The personal data that we may collect is:

  • Name
  • Home address
  • Email Address
  • Date of Birth
  • Phone number
  • Health information (in relation to your hair appointment)

Burnt Orange (UK) Limited need to obtain and process your personal data to provide you with our products, services and treatments and to fulfil our business and legal obligations.

Where we request sensitive personal data from you (i.e. health or medical data), the reason(s) for the request will be clearly given along with the purposes of the processing. Explicit consent through a signature will always be required for us to obtain and process your health information.

Burnt Orange (UK) Limited takes your privacy seriously and we will never sell or rent your personal data to any third-party.

Who is processing my data?

Burnt Orange (UK) Limited are the data controller and processes your personal information for the purposes laid out in this privacy notice.

Shortcuts Software (UK) Ltd with its principal place of business at Shortcuts, Dalton House, Dane Road, Sale, Manchester, Cheshire, M33 7AR, United Kingdom, acts as data processor on behalf of Burnt Orange (UK) Limited and have access to personal information only in cases that client support or troubleshooting is required by Burnt Orange (UK) Limited. Further, they must process the personal information in accordance with this Privacy Policy and as permitted by applicable data protection laws.

Your personal data is processed to:

  • Collect specific personal data (name, address, email, contact number, DOB) that is required to enter into a contract to sell a product or service.
  • Engage in communication with you including confirmation and reminders of appointments, and requests to cancel or change bookings.
  • Collect Health information to perform the agreed services appropriately, and potentially highlight areas that products and services may cause issues to clients because of their health.
  • Ensure a safe service and provide industry standard advice.
  • Select relevant offers, promotions and information for you
  • Estimate the number of clients we have.
  • Hold personal data that is required by law or to respond to legal process.
  • Hold for insurance purposes.
  • Store client records.

Your rights as the individual

If your personal data is held by Burnt Orange (UK) Limited you hold particular rights over it. Where you have provided consent for us to contact you as part of our marketing services, you have the right to modify or withdraw your consent at any time by using the unsubscribe option accompanied with all of our direct email marketing, or by contacting Burnt Orange (UK) Limited on Privacy@SimonSmithUK.com

You also have the right:

  • To be informed of how your personal data will be used before it is collected.
  • To access your personal data personal data and to information on how your information is used after it has been gathered.
  • To have personal data corrected if it is incomplete, inaccurate or out-of-date.
  • To request the removal or deletion of personal data where there is no compelling reason for its continued processing.
  • To restrict processing, to ‘block’ processing of your personal data.
  • To data portability, having your data moved, copied or transferred from Burnt Orange (UK) Limited to another organisation in an easily readable format.
  • To object to direct marketing from us.

Burnt Orange (UK) Limited will comply with any requests to exercise your rights in accordance with applicable law. Please be aware, however, that there are a number of limitations to these rights, and there may be circumstances where we are not able to comply with your request. To make any requests regarding your personal data, or if you have any questions or concerns regarding your personal data, you should contact us on Privacy Policy. You are also entitled to contact your local supervisory authority for data protection.

Special categories of personal data collected

Health questions may be asked via our allergy test or our consent forms to potentially highlight services or products that may have a negative effect on your health due to medication you are taking or a condition you have. Burnt Orange (UK) Limited asks for consent prior to gathering and processing this information. At any time after giving consent, you can withdraw you consent, subject to legal, insurance and contractual restrictions in this Privacy Policy. Your privacy is very important to us and we only use this information for determining your suitability for services and product use.

Process of collection

Your personal data is collected when you provide it to us through Shortcuts software, our Sites, over the phone, in Burnt Orange (UK) Limited salons, by email, social media, in writing or any other means by which you provide it to us. Information is stored using the Shortcuts software platform as well as some level of paper record keeping.

Burnt Orange (UK) Limited gives you access to information about your account and bookings through Shortcuts software, for the limited purpose of viewing and updating that information.

Children’s privacy

Burnt Orange (UK) Limited does not collect the personal data of children under the age of 16 without parental or guardian consent. If you believe that we hold any information from or about a child under age 16, please contact Burnt Orange (UK) Limited and if we cannot immediately obtain appropriate parental or guardian consent, will remove the personal data from storage.

Who do we share this personal data with?

Your personal data is shared only with Shortcuts representatives in cases that client support and troubleshooting is required for the salon. Burnt Orange (UK) Limited do not share your personal information with any third-party without your prior consent, other than those already disclosed in this Privacy Policy or as part of our legal obligations under the relevant data protection laws.

Use of data processors

Data processors are third parties who provide some elements of our business services for us. Where we use a third-party, we have strict agreements in place governing the processing of your personal data, on which no action can be taken without instruction from us. The third parties with whom we work will never share or disclose your personal information and will hold it securely at all times.

Shortcuts is a data processor and Burnt Orange (UK) Limited use software provided by Shortcuts. Here is a link to their Privacy Policy. (optional) https://www.shortcuts.co.uk/privacy-policy/

How long do we keep your data?

Burnt Orange (UK) Limited retains your personal data for as long as necessary to provide you with our services as our client.

Burnt Orange (UK) Limited are required under tax laws to keep your personal data for a minimum of 7 years. Health and Safety records will be retained for 10 years and where we have your consent for marketing purposes, we will retain the minimum required data until you notify us that you no longer wish to receive such information.

The criteria for which we would continue to process your personal information includes:

  • Where there is a legal basis, obligation or legitimate interest to continuing processing your personal information.
  • Where processing is necessary for the establishment, exercise or defence of legal claims.

Transfers of personal information

When your personal data is processed through Shortcuts software, all of it is held within the EU. Your information is processed by the Shortcuts software and their Cloud services. During this process your data is encrypted in transit and at rest.

Consequences of not providing your personal information to Burnt Orange (UK) Limited.
In the event that you want to purchase a product or service from Burnt Orange (UK) Limited, certain personal information is required to enter into a contract with you. Burnt Orange (UK) Limited will not be able to enter into a contract with you to fulfil an attempt to purchase a product or service if you do not provide your personal information. As noted in this Privacy Policy, we are processing your personal data to comply with legal and statutory obligations and in the performance of a contract. You can always choose not to provide personal information; however, we will be unable to provide certain products and services in these instances.

Safeguarding your Personal Data

Appropriate measures are taken to protect your personal data from access from unauthorised persons or inappropriate access, internal or external. Your connection to the Shortcuts system uses a HTTP Secure communication protocol and TLS security. This means all information passed to the Shortcuts system is encrypted during data input and transfer to the cloud. Any paper files recording your personal data are held in a locked filing cabinet which can only be accessed by authorised personnel in the salon.

Employees are only assigned specific access rights and can only access the salon software with the PIN number assigned to them by the management of the salon.

Privacy Policy - Last updated 24th May 2018

Privacy Policy




@simonsmithhair
/td>
Contact Us Products we use Our Communication
Chipping Norton
Email Us
+44 (0)1608 647 007
chippingnorton@simonsmithuk.com
Cheltenham
Email Us
+44 (0)1242 222 008
cheltenham@simonsmithuk.com
Davines
KeraStraight
Olaplex
Cloud Nine
Wella
Our Culture
Press
Terms & Conditions
Privacy Policy
Cookie Policy
© Simon Smith UK (Copyright 2020)